CVE-2018-10947
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
13/06/2019
Last modified:
17/06/2026
Description
An issue was discovered in versions earlier than 1.3.2 for Polycom RealPresence Debut where the admin cookie is reset only after a Debut is rebooted.
Impact
Base Score 3.x
3.10
Severity 3.x
LOW
Base Score 2.0
2.90
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:polycom:realpresence_debut_firmware:*:*:*:*:*:*:*:* | 1.3.2 (excluding) | |
| cpe:2.3:h:polycom:realpresence_debut:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://support.polycom.com/PolycomService/home/home.htm
- https://support.polycom.com/content/dam/polycom-support/global/documentation/advisory-rp-debut-vulnerabilities.pdf
- https://support.polycom.com/PolycomService/home/home.htm
- https://support.polycom.com/content/dam/polycom-support/global/documentation/advisory-rp-debut-vulnerabilities.pdf



